{"schema_version":"1.7.3","id":"SUSE-SU-2017:0305-1","published":"2017-01-27T17:25:07Z","modified":"2026-02-04T03:57:29.873571Z","related":["CVE-2016-8866","CVE-2016-9556","CVE-2016-9559","CVE-2016-9830"],"upstream":["CVE-2016-8866","CVE-2016-9556","CVE-2016-9559","CVE-2016-9830"],"summary":"Security update for GraphicsMagick","details":"\nThis update for GraphicsMagick fixes the following issues:\n\n* CVE-2016-9556 Possible Heap-overflow found by fuzzing [bsc#1011130]\n* CVE-2016-9559 Possible Null pointer access found by fuzzing [bsc#1011136]\n* CVE-2016-8866 Possible memory allocation failure in AcquireMagickMemory [bsc#1009318]\n* CVE-2016-9830: Memory allocation failure in MagickRealloc (memory.c) (bsc#1013640).\n","affected":[{"package":{"name":"GraphicsMagick","ecosystem":"SUSE:Linux Enterprise Software Development Kit 11 SP4","purl":"pkg:rpm/suse/GraphicsMagick&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2011%20SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.2.5-4.59.1"}]}],"ecosystem_specific":{"binaries":[{"GraphicsMagick":"1.2.5-4.59.1","libGraphicsMagick2":"1.2.5-4.59.1","perl-GraphicsMagick":"1.2.5-4.59.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2017:0305-1.json"}},{"package":{"name":"GraphicsMagick","ecosystem":"SUSE:Studio Onsite 1.3","purl":"pkg:rpm/suse/GraphicsMagick&distro=SUSE%20Studio%20Onsite%201.3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.2.5-4.59.1"}]}],"ecosystem_specific":{"binaries":[{"GraphicsMagick":"1.2.5-4.59.1","libGraphicsMagick2":"1.2.5-4.59.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2017:0305-1.json"}}],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2017/suse-su-20170305-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1009318"},{"type":"REPORT","url":"https://bugzilla.suse.com/1011130"},{"type":"REPORT","url":"https://bugzilla.suse.com/1011136"},{"type":"REPORT","url":"https://bugzilla.suse.com/1013640"},{"type":"REPORT","url":"https://bugzilla.suse.com/1017421"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-8866"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-9556"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-9559"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2016-9830"}]}